-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 06 Sep 2020 09:50:07 +0200 Source: gnutls28 Architecture: source Version: 3.6.15-1 Distribution: unstable Urgency: low Maintainer: Debian GnuTLS Maintainers <pkg-gnutls-maint@lists.alioth.debian.org> Changed-By: Andreas Metzler <ametzler@debian.org> Closes: 969547 Changes: gnutls28 (3.6.15-1) unstable; urgency=low . * New upstream version. + Fixes NULL pointer dereference if a no_renegotiation alert is sent with unexpected timing. CVE-2020-24659 / GNUTLS-SA-2020-09-04 Closes: #969547 + Drop 50_01-serv-omit-upper-bound-of-maxearlydata-option-definit.patch 50_02-gnutls_aead_cipher_init-fix-potential-memleak.patch 50_03-gnutls_cipher_init-fix-potential-memleak.patch 50_04-crypto-api-always-allocate-memory-when-serializing-i.patch + Fix build error due to outdated gettext in Debian by removing newer gettext m4 macros from m4/. Checksums-Sha1: 01b5847362818df3a9e1132b96ff1f577926717d 3479 gnutls28_3.6.15-1.dsc 00ef7d93347df586c3d1a00f13c326706c0c59ba 6081656 gnutls28_3.6.15.orig.tar.xz 577ed6e4539bcbb0429578b5400289ec6afcd417 833 gnutls28_3.6.15.orig.tar.xz.asc 5caadb57c9fa3bdc14579785fdbb1559e4100fca 63072 gnutls28_3.6.15-1.debian.tar.xz Checksums-Sha256: ecfd81c7f55f4676f9f0d0e805f7644a237166887acbd6ee8178160241edabca 3479 gnutls28_3.6.15-1.dsc 0ea8c3283de8d8335d7ae338ef27c53a916f15f382753b174c18b45ffd481558 6081656 gnutls28_3.6.15.orig.tar.xz 49abc685c9504b4b4de7a0cd8075ee9a4c01f0a6e2b2c9b86a24c58b1e7ac7c5 833 gnutls28_3.6.15.orig.tar.xz.asc 3141efe5a6d818d0e6d3de67e0335029468d8a2539365bc70b6506a3701099a1 63072 gnutls28_3.6.15-1.debian.tar.xz Files: 0f41d14ceda43ceb58a6f89b27e8c00d 3479 libs optional gnutls28_3.6.15-1.dsc e80e0d20a8bb337a15fa63caa7f67006 6081656 libs optional gnutls28_3.6.15.orig.tar.xz e5ca72bab65ef045a4622160c901f74c 833 libs optional gnutls28_3.6.15.orig.tar.xz.asc 89fec41b5f74a202b63ccaa94d6666fc 63072 libs optional gnutls28_3.6.15-1.debian.tar.xz -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEE0uCSA5741Jbt9PpepU8BhUOCFIQFAl9UmuwACgkQpU8BhUOC FITkmA/5AbK+Ua+JKxCP1vgPyvwJolOw2hAEIMBcPGt2Pfe/EJEQHnPnZTVRonQD t5V6Ct+M3mHpSWrxcSd7EnPIypYSijL6G30S6KDx74Ly9MgFMHjHVjeDPkuPyANO Lja0ZXU4tPRqnuAXNxUp3koxBVrq0Cqb65RaQrMQBSxQPKolvXXHwRzXQA+gGg58 hbT+9MWY39a0kAtSWr30L+niISUTap03xtIGaqQMM0pExzAEs37klj2/XmR+HXlp d7YKzsKbYM1493xYPT+Xq8rzQqg8g24c/Yv/WWgK5nbtaeG4Fvw4O1WuKf5tFlI/ yPmRXtzPYwy6gm434Ur1J7Hmb2lcH2X0VXBzlpP0JAjNcKu93TVBAKcChAtckAZ+ 4S5Cd3CMX0ozrxdtChur+3y0/DUCBN8p0ZtFsHKH/zYAa3S8loNLRQeWKpVViRFI n+nfFigkox/VBpnmMOEulbcPr4F2ms7lEuhvE6R0IcZf4jidR9u8UIo28iwEU5UU lwOonXBpeh6XAF/2p2BGdZp45yG49KUso7SwGrmd5lGHXFplRADOhPoJ8hY20mwd BPo+EVTJDEgoxfX2mXQT6geTQZzFpi29uvE6v2YcaIFl6IKsM8kgR+4BkMoS7+Az zAvSCQCnT/kCP2it7d3hfl71XXsEd8zdOq9RPoVU7WEOkCbuMik= =PG60 -----END PGP SIGNATURE-----